This Privacy Policy sets out the rules for storing and accessing information on the User's devices by means of Cookies, used to provide the electronic services requested by the User, by Stanislaw Pawlina Akcesoria Modowe.
§ 1 Definitions
Controller (also referred to as the Service Provider or the Seller) – the entity providing electronic sales services through the online store under the rules set out in the Terms and Conditions, namely Stanislaw Pawlina Akcesoria Modowe, an entrepreneur trading under the name Stanislaw Pawlina Akcesoria Modowe, 99-400 Lowicz, ul. Baczynskiego 2 lok. 59, Poland, tax ID (NIP) 8341208088, which stores and accesses information on the User's devices.
Cookies – IT data, in particular small text files, saved and stored on the devices through which the User accesses the Website.
Controller's Cookies – Cookies placed by the Controller in connection with the electronic services provided by the Controller through the Website.
Third-party Cookies – Cookies placed by the Controller's partners through the Website.
Website – the website or application through which the Controller runs the online store at www.allora.sklep.pl.
Device – the electronic device through which the User accesses the Website.
User – the entity to whom, in accordance with the Terms and Conditions and applicable law, electronic services may be provided or with whom a contract for the provision of electronic services may be concluded, and who has created an Account in the online store.
Personal data – personal data within the meaning of Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 (the General Data Protection Regulation, "GDPR"). Personal data is collected and processed in accordance with applicable law, including the GDPR.
§ 2 Collection and disclosure of personal data
The Website collects only information provided voluntarily by the User during registration and uses it solely for the purpose of performing the concluded contract, i.e. on the basis of Article 6(1)(b) of the GDPR.
The Website does not automatically collect any information, except for the information contained in Cookies.
The services offered by the Controller are intended for adults. The Controller therefore does not knowingly process children's data.
Users' personal data collected by the Controller is used for:
contacting the User,
informational purposes and other activities related to the User's activity on the Website.
The Controller processes Users' data for the following purposes:
performance of the concluded contract,
delivering content to Users,
measuring and improving content,
ensuring the security of data processing by the Controller,
managing IT systems.
To the extent that Users' personal data is processed for measuring and improving content on the Website, the legal basis for processing is the Controller's legitimate interest. It is in the Controller's interest to deliver and improve its content, ensure its highest quality and inform Users about it.
The legal basis for processing by the Controller may also be the User's consent, of which the User will be informed.
As a rule, the Controller does not disclose the User's personal data to third parties, except where it has a legal basis to do so, at the request of authorised bodies, or where it is necessary for services to be provided to the Controller – in which case this takes place under data processing agreements concluded with the entities providing those services.
The User's data may be disclosed at the request of public authorities or other bodies where provided for by law.
Third parties whose services the Controller uses to provide its own services may also have access to the User's data. This concerns above all providers of hosting, payment and IT support services. In such cases the Controller has concluded appropriate data processing agreements with those entities, under which they undertake, when processing data on the Controller's behalf, to protect that data against unauthorised access.
§ 3 Types of Cookies used
The Cookies used by the Controller are safe for the User's Device. In particular, they cannot be used to introduce viruses, other unwanted software or malware onto Users' Devices. These files make it possible to identify the software used by the User and to tailor the Website to each User individually. Cookies usually contain the name of the domain they come from, the time they are stored on the Device and an assigned value.
The entity placing Cookies on the User's end Device and accessing them is the Website Controller.
The Controller uses two types of Cookies:
Session Cookies: temporary files stored on the User's end Device until the end of the browser session (logging out, leaving the website, closing the browser). Once the session ends, the stored information is permanently deleted from the Device's memory. The session Cookie mechanism does not allow any personal data or confidential information to be retrieved from the User's Device.
Persistent Cookies: stored on the User's Device and kept there for the period specified in the Cookie parameters or until deleted by the User. Ending the browser session or switching off the Device does not remove them from the User's Device. The persistent Cookie mechanism does not allow any personal data or confidential information to be retrieved from the User's Device.
The User may restrict or disable Cookies' access to their Device. If this option is used, the Website will remain usable, except for the features that by their nature require Cookies.
§ 4 Purposes for which Cookies are used
Cookies are used for the following purposes:
configuring the Website and adapting the content of its pages to the User's preferences, and optimising the use of the pages; in particular, these files make it possible to recognise the User's Device and display the website accordingly, tailored to the User's individual needs;
analysis and research, audience audits and statistics that help understand how Users use the Website, allowing its structure and content to be improved;
maintaining the User's session (after signing in), so that the User does not have to re-enter their login and password on every subpage of the Website;
carrying out processes necessary for the full functionality of the website and ensuring its security and reliability.
§ 5 Setting the conditions for storing or accessing Cookies
The User may, independently and at any time, change the Cookie settings, specifying the conditions for storing Cookies and for their access to the User's Device. The User may change these settings via the web browser settings or the service configuration. In particular, the settings may be changed to block automatic handling of Cookies in the browser or to notify the User each time Cookies are placed on their Device. Detailed information on the options and methods of handling Cookies is available in the software (web browser) settings.
The User may delete Cookies at any time using the features available in the web browser they use.
Restricting the use of Cookies may affect some of the functionality available on the Website.
The Controller advises that changes to the settings of the User's web browser may affect access to certain features of the Website, for example by limiting them.
§ 6 Handling Cookies
Cookies are handled and stored directly by the web browser used by the User. By default, web browsing software allows Cookies to be stored on the User's end Device.
Website Users may change their Cookie settings at any time. In particular, the settings may be changed to block automatic handling of Cookies in the browser or to notify the User each time Cookies are placed on their Device.
Further detailed information on the options and methods of handling Cookies is available in the software (web browser) settings.
The Controller advises that restricting the use of Cookies may affect some of the functionality available in the online store.
§ 7 User rights
The User has the following rights:
the right of access – at the User's request, the Controller will confirm which of the User's data it processes and provide a copy of that data;
the right to rectification – where the User's data is inaccurate or incomplete, the User may ask the Controller to correct or complete it;
the right to erasure – in the situations set out in the GDPR, the User may ask the Controller to delete their personal data;
the right to restriction of processing – in certain situations the User may ask the Controller to restrict the processing of their data, for example where the User contests the accuracy of the personal data;
the right to data portability – in certain situations the User has the right to receive their data in a structured, commonly used and machine-readable format in order to transmit it to another controller;
the right to object – the User may request that the processing of their personal data cease on grounds relating to their particular situation, among others where the processing is not based on the Controller's legitimate interest. The Controller should then no longer process the User's data unless it demonstrates compelling legitimate grounds for the processing which override the interests, rights and freedoms of the User, or grounds for the establishment, exercise or defence of legal claims;
the right to lodge a complaint with a supervisory authority – where the User believes that their data is being processed unlawfully.
§ 8 Data retention period
As a rule, the Controller stores Users' data only for as long as is necessary to achieve the purposes for which the data was collected. After that period the data is deleted.
Personal data may also be stored for as long as required by law or where necessary for the establishment, exercise or defence of claims by the Controller against Users.
§ 9 Changes to the Privacy Policy
The Controller keeps the current version of the Privacy Policy available on the Website.
§ 10 Contact
Any questions, requests or comments regarding this Privacy Policy may be sent to: sklep@allora.sklep.pl.